Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2008-0423EPSS 37%
Multiple PHP remote file inclusion vulnerabilities in Lama Software allow remote attackers to execute arbitrary PHP code via a URL in the MY_CONF[cla…
Lama Software
No fix yet
HIGH 7.5
CVE-2008-0433
PHP remote file inclusion vulnerability in theme/phpAutoVideo/LightTwoOh/sidebar.php in Agares phpAutoVideo 2.21 and earlier allows remote attackers …
Phpautovideo
after 2.21
HIGH 7.5
CVE-2008-0390
stat.php in AuraCMS 1.62, and Mod Block Statistik for AuraCMS, allows remote attackers to inject arbitrary PHP code into online.db.txt via the X-Forw…
Auracms
No fix yet
MEDIUM 6.8
CVE-2008-0376EPSS 32%
PHP remote file inclusion vulnerability in inc/linkbar.php in Small Axe Weblog 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL …
Small Axe Weblog
No fix yet
HIGH 7.5
CVE-2008-0382EPSS 42%
Multiple eval injection vulnerabilities in MyBB 1.2.10 and earlier allow remote attackers to execute arbitrary code via the sortby parameter to (1) f…
Mybulletinboard
No fix yet
HIGH 7.2
CVE-2008-0302
Untrusted search path vulnerability in apt-listchanges.py in apt-listchanges before 2.82 allows local users to execute arbitrary code via a malicious…
Apt Listchanges
after 2.81
MEDIUM 6.8
CVE-2008-0287
PHP remote file inclusion vulnerability in VisionBurst vcart 3.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the abs_path pa…
Vcart
No fix yet
MEDIUM 6.8
CVE-2008-0289
PHP remote file inclusion vulnerability in view_func.php in Member Area System (MAS) 1.7 and possibly others allows remote attackers to execute arbit…
Member Area System
after 1.7
MEDIUM 6.8
CVE-2008-0283
PHP remote file inclusion vulnerability in /aides/index.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary PHP code via a UR…
Domphp
after 0.81
HIGH 10.0
CVE-2008-0251
Unrestricted file upload vulnerability in PhotoPost vBGallery before 2.4.2 allows remote attackers to upload and execute arbitrary files via unknown …
Photopost Vbgallery
after 2.4.1
HIGH 10.0
CVE-2008-0235EPSS 29%
The Microsoft VFP_OLE_Server ActiveX control allows remote attackers to execute arbitrary code by invoking the foxcommand method.
Vfp Ole Server Activex Control
No fix yet
HIGH 7.5
CVE-2008-0230
PHP remote file inclusion vulnerability in php121db.php in osDate 2.0.8 and possibly earlier versions allows remote attackers to execute arbitrary PH…
Osdate
No fix yet
HIGH 7.5
CVE-2008-0222EPSS 8%
Unrestricted file upload vulnerability in ajaxfilemanager.php in the Wp-FileManager 1.2 plugin for WordPress allows remote attackers to upload and ex…
Filemanager
No fix yet
HIGH 7.5
CVE-2008-0143EPSS 6%
PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM Broadcaster, allows remote att…
Sam Broadcaster
No fix yet
HIGH 7.5
CVE-2007-6649EPSS 6%
PHP remote file inclusion vulnerability in includes/tumbnail.php in MatPo Bilder Galerie 1.1 allows remote attackers to execute arbitrary PHP code vi…
Matpo Bilder Galerie
No fix yet
HIGH 7.5
CVE-2007-6652
cpie.php in XCMS 1.83 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct direct static code …
Xcms
after 1.83
HIGH 7.5
CVE-2007-6655
PHP remote file inclusion vulnerability in includes/function.php in Kontakt Formular 1.4 allows remote attackers to execute arbitrary PHP code via a …
Kontakt Formular
No fix yet
HIGH 7.5
CVE-2007-6657EPSS 6%
PHP remote file inclusion vulnerability in source/includes/load_forum.php in Mihalism Multi Forum Host 3.0.x and earlier allows remote attackers to e…
Multi Host
No fix yet
MEDIUM 6.8
CVE-2007-6632
showCode.php in xml2owl 0.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the path parameter.
Xml2owl
No fix yet
MEDIUM 6.8
CVE-2007-6614EPSS 6%
PHP remote file inclusion vulnerability in admin/frontpage_right.php in Agares Media phpAutoVideo 2.21 allows remote attackers to execute arbitrary P…
Phpautovideo
Patch available
MEDIUM 6.8
CVE-2007-6615EPSS 5%
Directory traversal vulnerability in includes/block.php in Agares Media phpAutoVideo 2.21 allows remote attackers to include and execute arbitrary lo…
Phpautovideo
Patch available
HIGH 7.5
CVE-2007-6568
PHP remote file inclusion vulnerability in config.inc.php in XZero Community Classifieds 4.95.11 and earlier allows remote attackers to execute arbit…
Xzero Community Classifieds
after 4.95.11
MEDIUM 6.8
CVE-2007-6585
PHP remote file inclusion vulnerability in confirmUnsubscription.php in NmnNewsletter 1.0.7 allows remote attackers to execute arbitrary PHP code via…
Nmnnewsletter
No fix yet
HIGH 7.5
CVE-2007-6548EPSS 8%
Multiple direct static code injection vulnerabilities in RunCMS before 1.6.1 allow remote authenticated administrators to inject arbitrary PHP code v…
Runcms
after 1.6
HIGH 7.5
CVE-2007-6550EPSS 7%
form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injec…
Pmos Helpdesk
after 2.4
MEDIUM 6.8
CVE-2007-6553
Multiple PHP remote file inclusion vulnerabilities in TeamCal Pro 3.1.000 and earlier allow remote attackers to execute arbitrary PHP code via a URL …
Teamcal Pro
after 3.1.000
HIGH 9.3
CVE-2007-6555EPSS 6%
PHP remote file inclusion vulnerability in modules/mod_pxt_latest.php in the mosDirectory (com_directory) 2.3.2 component for Joomla! allows remote a…
Mosdirectory
No fix yet
MEDIUM 6.8
CVE-2007-6539
PHP local file inclusion vulnerability in index.php in IDevspot iSupport 1.8 allows remote attackers to include local files via the include_file para…
Isupport
No fix yet
HIGH 7.5
CVE-2007-6542EPSS 6%
PHP remote file inclusion vulnerability in admin/frontpage_right.php in Arcadem LE 2.04 and earlier allows remote attackers to execute arbitrary PHP …
Arcadem
after 2.04
HIGH 7.5
CVE-2007-6515EPSS 8%
support/dispatch.cgi in SiteScape Forum allows remote attackers to execute arbitrary TCL code via code separator characters in the query string.
Sitescape Forum St
Patch available